Share
## https://sploitus.com/exploit?id=WPEX-ID:B4186C03-99EE-4297-85C0-83B7053AFC1C
1. Go to "Salon > Settings"
2. Under "General > Salon Information" scroll down to "Email Notifications Service"
3. For "Customize the booking reminder message" enter the payload: `</textarea><script>alert(/XSS: salon_settings[booking_update_message]/)</script>`
4. Click "Update Settings"
5. Go to "Salon > Booking" and open a booking to see the XSS